πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1451 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
8e029624-7fc2-4290-8d54-94b319793d76
< 3.4
MEDIUM 4.3 The LWS Optimize – All-in-One Speed Booster & Cache Tools plugin for WordPress is vulnerable to unauthorized access du… wordfence
8dfc0d5e-bdc4-4f71-8aa3-0a4fbd7ef37d MEDIUM 4.3 The Outbound Link Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
8dee5ec0-d319-4898-ad7c-8685ea197de6
< 6.0.14
MEDIUM 4.3 The Flexible PDF Invoices for WooCommerce & WordPress plugin for WordPress is vulnerable to Cross-Site Request Forge… wordfence
8debe6ab-2705-40f5-8bcb-7b0c823d55e9
< 6.7.0.83
MEDIUM 4.3 The Quiz Maker plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.… wordfence
8de2156f-5087-4c16-8e5d-93b5c72ec536
< 9.1.1
MEDIUM 4.3 The Newsletter – Send awesome emails from WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery i… wordfence
8ddc2351-c73c-407d-a3a8-eccde252819b
< 2.27
MEDIUM 4.3 The reCAPTCHA for all plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
8dbdc4f6-0a3b-4f06-b1e5-e80e4795bf4b MEDIUM 4.3 The Recent Posts Slider Responsive plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t… wordfence
8dad1a7c-a5a5-486b-bf15-6fd455e6612c
< 2.9.1
MEDIUM 4.3 The CM Download Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to 2.9.1. This i… wordfence
8daa04cd-b61e-435f-9e10-3319949fdac7
< 2.5.4
MEDIUM 4.3 The JobSearch plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.3. … wordfence
8da64b2f-8546-4276-9dbf-b60e885a0309
< 3.2.8
MEDIUM 4.3 The Privacy Policy Generator, Terms & Conditions Generator WordPress Plugin : WP Legal Pages plugin for WordPress is vul… wordfence
8da49c2e-576c-490b-b812-96d15b6d2b1b
< 3.7
MEDIUM 4.3 The Easy Testimonials plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
8da2ac6e-4fdc-448f-928d-495f65e0ec1f
< 4.1.4.1
MEDIUM 4.3 The Uncanny Toolkit Pro for LearnDash plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to… wordfence
8da0fed9-4b88-4b68-b317-124fe678cfa4 MEDIUM 4.3 The Template Debugger plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
8d983e98-c7a9-49f5-ab0d-fdbb94ca1922 MEDIUM 4.3 The Woo Slider Pro – Drag Drop Slider Builder For WooCommerce plugin for WordPress is vulnerable to unauthorized acces… wordfence
8d89e3b7-d980-42bb-ab0c-d86ab174a69c
< 1.36.0
MEDIUM 4.3 The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Cross-Si… wordfence
8d7c63f3-d845-4a9a-ab98-4da5ee4b3727
< 2.5.5
MEDIUM 4.3 The Job Portal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
8d797238-f8f3-44d7-8c16-bee23ce12ae0
< 1.9.1
MEDIUM 4.3 The ADFO – Custom data in admin dashboard plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers… wordfence
8d652a1e-82b5-4843-8546-c25ca02051d4
< 8.45
MEDIUM 4.3 The AR For WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … wordfence
8d5d0c82-f5cd-4eaf-9530-0541985cb533
< 6.5.9
MEDIUM 4.3 The FS Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.5.8. … wordfence
8d4f0513-ac9c-4eaf-b3ce-3a7c47908ef7
< 1.0.3
MEDIUM 4.3 The ShortPixel Critical CSS plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabilit… wordfence
8d4ec326-3008-45f9-a3d7-59b3676182fc MEDIUM 4.3 The Ads.txt Admin plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.3… wordfence
8d4bbbf9-db8e-4e8a-999b-9fa279d3daea
< 1.8.11
MEDIUM 4.3 The Subscription for WooCommerce – WordPress Recurring Payments Plugin plugin for WordPress is vulnerable to Insecure … wordfence
8d413350-f520-4dd9-af7d-e776628aef1d
< 2.3.5
MEDIUM 4.3 The Simple Org Chart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … wordfence
8d32694c-ddc9-40e3-b8f1-55d9ffb1baa8
< 2.5.3
MEDIUM 4.3 The DocsPress – Online Documentation plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
8d1dd819-07e8-4578-a994-2ca7fbab216b
< 1.5.4
MEDIUM 4.3 The Kata Plus – Addons for Elementor – Widgets, Extensions and Templates plugin for WordPress is vulnerable to unaut… wordfence
← Prev 1448 1449 1450 1451 1452 1453 1454 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top